Tag: bugbounty
All the articles with the tag "bugbounty".
-
Crashing Node.js with 40 Lines of JavaScript — A Memory Corruption Story
How I found a TOCTOU race condition in Node.js's native UTF-8 decoder that causes heap corruption via SharedArrayBuffer, built a working crash PoC, reported it to HackerOne — and watched it get closed as Informative.
-
Solving YesWeHack Dojo #49 — How Two Dashes and a Dash-R Broke a Secret Manager
A detailed walkthrough of how I solved YesWeHack's Dojo #49 Secret Manager challenge by chaining two glob injection tricks — a recursive copy flag and a grep option terminator — to exfiltrate secrets from a protected directory in a single HTTP request
-
How I Fixed False Positives in Dalfox XSS Scanner (Issue #884)
A deep dive into contributing to Dalfox — fixing false positive XSS alerts on JSON API endpoints, the mistakes I made, and the proper fix.
-
Solving Intigriti's May 2024 XSS Challenge — PhpSpreadsheet Formula Injection to XSS
A detailed walkthrough of how I solved Intigriti's May 2024 XSS challenge by exploiting a 2nd-order formula injection vulnerability in PhpSpreadsheet's calculateFormula() to achieve Cross-Site Scripting
-
Hacking Porn and Dating Sites - A Theme-Based Bug Bounty Approach
An Individual research on bugbounty programs that I took an unique approach on choosing porn industry based programs which paid me pretty much..
-
Solving Intigriti's April 2024 XSS Challenge — postMessage, Race Conditions, and a Sneaky iframe Sandbox
A walkthrough of how I solved Intigriti's April 2024 monthly XSS challenge — hardcoded creds in the DOM, an iframe sandbox misconfiguration, and a postMessage handler with no origin check that turned into a clean XSS
-
A story of Default wordlist in Dirsearch to 20k INR Bounty
My First Bug in my bugbounty journey where I took an approach of guy who solves the CTF... Unfortunately it worked and I found some sensitive files which lead to a bounty